It would be great if you could make a video explaining how you found the bug from the beginning to the end :)
@lmaoo2548 ай бұрын
It's a htb box, named paper, search it up if you want to know how he found the bug. Also you don't get paid ($1700) for solving a htb box
@Noctuu7 ай бұрын
@@lmaoo254why’d he put 1700$ bug bounty in the title then
@tomdotsh7 ай бұрын
I've seen plenty of people do THM / HTB rooms and claim it to be a pirvate program and get paid from it@@Noctuu
@studiospan64263 күн бұрын
@@lmaoo254 i think he prolly did some domain forwarding to hide the domain name since it's a private program. he prolly used a private or public 0 day instead of fuzzing (guessing from the port)
@shainshashaik14738 ай бұрын
Thank you for showing trail and error .. with your video.. i got remote shell .. thanks a lot ❤❤
@abhishekmorla18 ай бұрын
Glad it helped
@shuvokumarsaha84789 ай бұрын
It would be great if you could make a video explaining how you found the bug from the beginning to the end :) 2
@dittonachan9 ай бұрын
great bro, learning alot from you, do you have any blog or writeups, I want to start hunting too
@abhishekmorla19 ай бұрын
Search my name you will get some medium writeups
@__pain__058 ай бұрын
can you make a video for recon????
@abhishekmorla18 ай бұрын
sure
@shreemadav95969 ай бұрын
Great find 💯💪
@playmorefunny23408 ай бұрын
this is crazy
@CyberNinja-p1t9 ай бұрын
omg, so cool
@miteshvalvi11709 ай бұрын
how you find cmd parameter
@abhishekmorla19 ай бұрын
Thats the recon part..you wont find in this video
@احمدفرحان-ت7ك9 ай бұрын
🎉🎉🎉🎉🎉
@CyberTechwithNikhil9 ай бұрын
It's my suggestion bro, try to add some nice hackers songs music😅, to make and and watching experience better it's my suggestion just depend upon you.
@abhishekmorla19 ай бұрын
Yeah i dont have time for choosing songs bro..😅 but will start again by using some non copyright songs
@CyberTechwithNikhil9 ай бұрын
@@abhishekmorla1 ofcourse you can do that also
@studiospan64263 күн бұрын
@@abhishekmorla1 jesus christ dude i hate those songs running in the background please don't add them 😭 looks so cheap like those russian hacktivists from hackernews. most of those videos are barely any informative so i just fast forward them and mute the sound. for example they would run wpscan then visit same endpoints manually like /wp/v2/users like isn't it supposed to be scanned by wpscan automatically? why would you waste your time they don't even know what they are doing. i started bb this year march made like a 800$ till now (am noob rn) and only 20% was from automation but most of the cheap videos you would find about hacking on KZbin would be them running some tool manually for 30-40 minutes like a skiddie dude write a script automate it why waste your time. While also wasting other's time in recon wormhole.
@abhishekmorla12 күн бұрын
Ok bro @@studiospan6426
@jomynn9 ай бұрын
How to report this bug?
@abhishekmorla19 ай бұрын
search for hackerone reports regarding same
@Srocify9 ай бұрын
what the target name ?
@abhishekmorla19 ай бұрын
private program
@Srocify9 ай бұрын
keep going dude i hope i can be like you
@RajuHa-g3m9 ай бұрын
@@abhishekmorla1how did you came to know this this is this file uploaded to rce ? How you came to this post request